CVE-2026-28205: Openplcproject OpenPLC v3 Firmware
Critical severity, CVSS 9.8. EPSS: 0.7% chance of exploitation in the next 30 days.
OpenPLC_V3 is vulnerable to an Initialization of a Resource with an Insecure Default vulnerability which could allow an attacker to gain access to the system by bypassing authentication via an API.
Affected products
- Openplcproject OpenPLC v3 Firmware: affected versions not specified
Published 2026-04-09. Last modified 2026-06-17.